extensions/<name>/extension.yaml. You do not add it to a central registry or manually attach it to the root agent.
From the agent folder, install a verified public PyPI wheel by its short slug or full distribution name:
py3-none-any wheel and validates the manifest, wheel metadata, digest, entry point, and package layout without importing extension code. Platform- or ABI-specific wheels are not installed. For local source, it validates the manifest and layout plus any available project identity and version metadata. Both paths materialize the complete package into extensions/<manifest-name> through a staged replacement and preserve its internal paths. Compilation projects only directories listed in contributes; it does not scatter their files into the agent root. Harnest refuses an existing extension unless you pass --force. Review same-process extension code and its declared capabilities before installation; installing changes dependency inputs, so refresh harnest-runtime.lock with harnest env sync ..
Published wheels may declare dependencies on Harnest or its framework packages. During installation, Harnest omits those compiler-owned requirements from the materialized project and supplies its pinned runtime versions instead. Extension-owned dependencies remain in the root environment solve. Locally authored extensions must not redeclare compiler-owned packages.
After compilation, Harnest exposes the extension module as harnest.extensions.<name>. Import the singleton from a discovered Agent Tool and call its bounded API:
tools/query_warehouse.py
warehouse.context resolves the typed WarehouseContext created for that request. Retaining it after the invocation ends fails closed.
Resolve the typed context explicitly
Trusted application code can ask Harnest for the same invocation-scoped view:lib/warehouse_service.py
Find published extensions
Search public PyPI for compatibleharnest-extension-* packages:
harnest.extensions entry point, the bundled extension.yaml and extension.py, release identity, and the published wheel digest without importing package code. official means Fused controls and explicitly recognizes that package name; community means only that the wheel satisfies the structural contract. Neither label is a security review.
Create your own extension
Define the local manifest, singleton, typed context, and dependencies.
Use extension lifecycle
Add only the hooks and factories declared by the manifest.